Using an Enterprise Information Management System to Enhance IT Compliance and Information Value

被引:0
|
作者
Dameri, Renata Paola [1 ]
机构
[1] Univ Genoa, Dept Business Adm, Genoa, Italy
关键词
IT governance; IT management; IT compliance; knowledge management;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
During the latest years, IT governance has become more and more important, for several reasons: the increasing pervasivity of IT in business organization, management and administration requires a veritable governance activity, to strategically orient decision making about IT investments and management; - the role of information systems in administrative data processing requires a special focus on information security and process control; - the need to keep down IT budget forces to balance IT capital expenditure and operational expenditure and to increase IT systems productivity and information value. More of the attention on IT Governance is captured by compliance, owing to the recent financial scandals and the severe rules regarding information systems audit and control. Companies need to comply with these rules, but it requires important investments, considered not strategic but only necessary (Remenyi et. Al. 2000). However, companies should analyse the compliance requirements and to implement an IT governance system, not only to comply with legal rules, but also to improve the strategic alignment between IT and business and to optimise value creation by IT compliance investments (Ventrakaman and Henderson 1996, Van Grembergen 2003). Therefore, IT governance should have a complex set of goals, such as: - to standardize and unify processes; - to align information delivery with business needs; to control IT initiatives cost; - to comply with external requirements. These goals are often opposed and difficult to pursue, because: - they regard cross functional enterprise systems; - they are strictly linked; - they concern large databases and applications, very difficult to control. To optimise IT compliance it is useful to define a roadmap to IT compliance, orienting these activity to value creation, by realising scale, scope and experience economies in IT compliance activities. The accomplishment of this roadmap is the automation of IT compliance processes, using Governance, Risk and Compliance (GRC) standard solutions or developing in house systems, such as Enterprise Information Management (EIM) systems, to automatically manage processes, data and information security, access control, system performance and to data usability. In this paper, IT compliance topic is introduced, to define how to orient IT compliance to value creation; GRC systems and EIM systems are described, with their different cost and benefits for companies. Aim of the paper is to define how to develop compliance automated systems, to save money and enhance information integration and value. Observations and conclusions derive from practical experience of the author, participating to a project of EIM implementation in a major Italian company.
引用
收藏
页码:111 / 121
页数:11
相关论文
共 50 条
  • [21] THE ENTERPRISE MANAGEMENT SYSTEM: EVALUATING THE USE OF INFORMATION TECHNOLOGY AND INFORMATION SYSTEMS
    Borisova, V. V.
    Demkina, O., V
    Mikhailova, A., V
    Zielinski, R.
    POLISH JOURNAL OF MANAGEMENT STUDIES, 2019, 20 (01): : 103 - 118
  • [22] The importance of information within a compliance management system
    Makowicz, Bartosz
    INFORMATION-WISSENSCHAFT UND PRAXIS, 2014, 65 (06): : 315 - 320
  • [23] PERCEPTIONS OF VALUE OF A MANAGEMENT INFORMATION SYSTEM
    GALLAGHER, CA
    ACADEMY OF MANAGEMENT JOURNAL, 1974, 17 (01): : 46 - 55
  • [24] Executive Enhance Business Value of BAL Information System
    Bilal, Muhammad
    Awais, Muhammad
    International Journal of Computer Science Issues, 2012, 9 (5 5-2): : 413 - 420
  • [25] "Laboratory Information Management System" Information Technology for Production Quality Assurance of Enterprise
    Shtangey, Svetlana
    Tereshchenko, Anton
    Rechkiman, Igor
    2015 SECOND INTERNATIONAL SCIENTIFIC-PRACTICAL CONFERENCE PROBLEMS OF INFOCOMMUNICATIONS SCIENCE AND TECHNOLOGY (PIC S&T 2015), 2015, : 112 - 114
  • [26] Enterprise Information System Design Using REA Enterprise Model
    Sevcik, Jaroslav
    Melis, Zdenek
    Zacek, Jaroslav
    Hunka, Frantisek
    STRATEGIC MANAGEMENT AND ITS SUPPORT BY INFORMATION SYSTEMS, 9TH INTERNATIONAL CONFERENCE, 2011, : 179 - 191
  • [27] Research on Key Technology of Enterprise Information Management System
    Xin, Dong
    Zhao, Hongxia
    Zhou, Baogang
    PROCEEDINGS OF THE 2015 INTERNATIONAL INDUSTRIAL INFORMATICS AND COMPUTER ENGINEERING CONFERENCE, 2015, : 61 - 65
  • [28] Optimization path for constructing enterprise management information system
    Wu, DY
    98 INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE & ENGINEERING, PROCEEDINGS, 1998, : 93 - 97
  • [29] Enterprise Management Information System & Business Process Reengineering
    Wang, B
    Ren, Y
    NEW TRENDS OF INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT IN NEW CENTURY, 2001, : 592 - 597
  • [30] Research on Enterprise Occupational Health Management Information System
    Chang Deqiang
    Liu Jingxian
    Chen Baozhi
    PROGRESS IN SAFETY SCIENCE AND TECHNOLOGY, VOL VII, PTS A AND B, 2008, 7 : 622 - 627